CVE-2006-2882 Information
Feb 14, 2021
cve
Description
Multiple cross-site scripting (XSS) vulnerabilities submit.asp in ASPScriptz Guest Book 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) GBOOK_UNAME (2) GBOOK_EMAIL (3) GBOOK_CITY (4) GBOOK_COU (5) GBOOK_WWW and (6) GBOOK_MESS form fields.
Reference
http://colander.altervista.org/advisory/ASzGB.txt http://secunia.com/advisories/20416 http://securityreason.com/securityalert/1056 http://www.securityfocus.com/archive/1/436028/100/0/threaded http://www.securityfocus.com/bid/18285 http://www.vupen.com/english/advisories/2006/2150 https://exchange.xforce.ibmcloud.com/vulnerabilities/26944
Share on: